If this is your first visit, be sure to
check out the FAQ by clicking the
link above. You may have to register
before you can post: click the register link above to proceed. To start viewing messages,
select the forum that you want to visit from the selection below.

tcpdump help

Now, when I try to read the capture into Etherreal (on Windows) it crashes the app and tells me the file is corrupt. Also, when I read the file back into tcpdump using tcpdump -i eth1 -s 1500 -X -vvv -r packetlog, it takes forever to read, pausing over certain packets for a very long time. Is this mornal. Am I adding a CLI switch to tcpdump that I can do without?

Well, first off, you did not specify what version of RedHat you are using: would be nice to know.

My guess is it is a path problem.

is /usr/sbin in your path?

try echo $PATH
to find out

My guess also is you are using not using the root account ( GOOD ! ) to do this, but used some means to gain root access.
if you used su
to utilize root access, maybe try instead su -
to utilize the root's paths as well?

" And maddest of all, to see life as it is and not as it should be" --Miguel Cervantes